exam questions

Exam CSCP All Questions

View all questions & answers for the CSCP exam

Exam SC-100 topic 2 question 45 discussion

Actual exam question from APICS's CSCP
Question #: 45
Topic #: 1
[All CSCP Questions]

Your company has an Azure subscription that has enhanced security enabled for Microsoft Defender for Cloud.

The company signs a contract with the United States government.

You need to review the current subscription for NIST 800-53 compliance.

What should you do first?

  • A. From Defender for Cloud, add a regulatory compliance standard.
  • B. From Azure Policy, assign a built-in policy definition that has a scope of the subscription.
  • C. From Defender for Cloud, review the Azure security baseline for audit report.
  • D. From Microsoft Defender for Cloud Apps, create an access policy for cloud applications.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
tuyi2
1 month ago
Selected Answer: A
This question has been repeated more than 6 times.
upvoted 1 times
...
Murtuza
7 months, 3 weeks ago
Selected Answer: A
A is correct
upvoted 4 times
...
Arockia
7 months, 3 weeks ago
A. From Defender for Cloud, add a regulatory compliance standard. To review the subscription for NIST 800-53 compliance, you should start by adding the NIST 800-53 regulatory compliance standard within Defender for Cloud. This will ensure that the appropriate compliance checks and assessments are performed against the NIST 800-53 controls for your Azure resources. The other options are not the correct first step for reviewing NIST 800-53 compliance:
upvoted 4 times
...
harimurti20
8 months, 2 weeks ago
Answer is B
upvoted 1 times
harimurti20
8 months, 2 weeks ago
Answer A is correct: Answer B will be correct if it contains Azure Policy initiative
upvoted 3 times
...
...
Glorpy
8 months, 3 weeks ago
Selected Answer: A
Answer is correct: Defender for Cloud's regulatory standards and benchmarks are represented as security standards. Defender for Cloud continually assesses the environment-in-scope against standards. Based on assessments, it shows in-scope resources as being compliant or noncompliant with the standard, and provides remediation recommendations.
upvoted 3 times
...
Azerty1313
8 months, 3 weeks ago
Answer is B
upvoted 1 times
...
theugly23
10 months, 1 week ago
Answer A Correct
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago